OWASP Threat Dragon

note that this page is out of date, see the latest version 1.x documentation

Future versions of Threat Dragon should provide an application programming interface to support CI/CD pipleines and the like. At present it provides a very minimal application programming interface, but this is being worked on.

Notional ideas for this API are:

  • provide pdf output
  • list unmitigated threats
  • list mitigated threats
  • statistics